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Abstract 

We prove a very general lower bound technique for quantum and randomized query complex- 
ity, that is easy to prove as well as to apply. To achieve this, we introduce the use of Kolmogorov 
complexity to query complexity. Our technique generalizes the weighted, unweighted methods 
of Ambainis, and the spectral method of Barnum, Saks and Szegedy. As an immediate con- 
sequence of our main theorem, adversary methods can only prove lower bounds for boolean 
functions / in 0{min{^ynCo{f), -^/nCi (/))), where Co,Ci is the certificate complexity, and n 
is the size of the input. We also derive a general form of the ad hoc weighted method used by 
H0yer, Neerbek and Shi to give a quantum lower bound on ordered search and sorting. 

1 Introduction 

1.1 Overview 

In this paper, we study lower bounds for randomized and quantum query complexity. In the query 
model, the input is accessed using oracle queries, and the query complexity of an algorithm is the 
number of calls to the oracle. Since it is difficult to obtain lower bounds on time directly, the query 
model is often used to prove concrete lower bounds, in classical as well as quantum computation. 

The two main tools for proving lower bounds of randomized query complexity, the polynomial 
method [BBC"'"f)lj and the adversary method |Ambr)2j . were successfully extended to quantum 
computation. In the randomized setting, the adversary method is most often applied using Yao's 
minimax principle |Yao77j . Using a different approach, which introduces the notion of quantum 
adversaries, Ambainis developed a general scheme in which it suffices to analyze the combinatorial 
properties of the function in order to obtain a quantum lower bound. Recently, Aaronson [AarOSj 
brought these combinatorial properties back to randomized computation, using Yao's minimax 
principle. 

The most general method for proving lower bounds in quantum query complexity is the semidef- 
inite programming method of Barnum, Saks and Szegedy BSS03 . This method is in fact an exact 
characterization of the query complexity. However, the method is so general as to be very difficult 
to apply to obtain concrete lower bounds. Barnum, Saks and Szegedy gave a weaker method derived 
from the semidehnite programming approach, using weight matrices and their largest eigenvalue. 
This spectral method can be thought of as a generalization of Ambainis' unweighted method. Other 
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generalizations of Ambainis' unweighted method have been previously introduced |BS02l lAmbOSj . 
All of them use a weight function on the instances. The difficulty in applying these methods is 
finding a good weight function on the instances. H0yer, Neerbek and Shi .HNS02] were the first to 
use such weight assignments to prove lower bounds for searching in ordered lists and sorting. Their 
ad hoc method, though similar in many respects, does not fall into setting of the weighted method 
of Ambainis |Ambn3j . 

This paper presents a new, very general adversary technique (Theorem ^ to prove lower 
bounds in quantum and randomized query complexity. We believed that this technique is simpler 
to prove and to apply. It is based on the framework of Kolmogorov complexity. This framework has 
proven to be very useful for proving negative results in other models of computation, for example 
for number of rounds and length of advice in random-self-reductions in |FFLN98l IBL99j . The 
techniques we use here are an adaptation of those techniques to the framework of query complexity. 
We expect that this framework will not only prove to be useful for negative results in other quantum 
models of computation, for instance, communication complexity, but also for finer analysis of query 
complexity in terms of the number of rounds of queries. 

The proof of Theorem ^ is in two parts. The first part (Divergence Lemma) shows how 
fast the computations can diverge when they start on different inputs. This part depends on 
the model of computation (randomized or quantum). The quantum case of this lemma was first 
proven by Ambainis |Ambn2j . The second part (Query Information Lemma) does not depend 
on the model of computation. It establishes the relationship between the Kolmogorov complexity 
of individual positions of the input, and the probability that a given algorithm makes a query to 
this position. Whereas Aaronson jAarfl3j used a different approach to prove a version of Ambainis' 
method for randomized algorithms, here we use the same framework to establish lower bounds for 
both quantum and randomized query complexities (QQC and RQC). 

We show that our method encompasses all previous adversary methods, including the quantum 
and randomized weighted methods |Ambfl3| IAarfl3j (Theorem [2)) and the spectral method |BSSn3j 
(Theorem ISJ. As an immediate consequence of our main theorem (observed by Troy Lee), our 
method can only prove lower bounds for boolean functions in 0(min(y^nCo(/), \/ nCi(/))), where 
Co and Ci is the certificate complexity of negative and positive instances, respectively, of /, and n is 
the size of the input (Theorem 14} . Prior to our work, it was known |Ambn3j that the unweighted 
Ambainis method |Amb02i Theorem 5.1] could not prove bounds better than ri(\/Co(/)Ci(/)); 
Szegedy (Sze03j also proved independently that the semidefinite programming method could not 
prove lower bounds better than 0(min(y^nCo(/), \/ nCi(/))), and Zhang |Zhan3j proved the same 
thing for Ambainis' weighted method. 

We also give a generalization (Theorem E} of the ad hoc proofs of H0yer, Neerbek and 
Shi |HNS02j as a corollary of our method. For this we introduce a new distance scheme. This 
new scheme separates the quantum part from the combinatorial part of these ad hoc proofs. Using 
it, we prove the lower bound of |HJNSn2j using only combinatorial arguments. We end the paper by 
giving some applications of our method to prove lower bounds for some graph properties: bipartite- 
ness (Theorem |H} and connectivity (Theorem [7|. This lower bounds were proven in 
We reprove them here to illustrate the simplicity of our method. 
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1.2 Main result 



Our main result is stated below. 

Theorem 1. There exists a constant C > such that the following holds. Let T, be a finite set, let 
n > 1 be an integer, and let S Q and S' be sets. Let f : S ^ S' . Let A be an algorithm that 
for all X £ S computes f , with bounded error e and at most T queries to the input. Then for every 
x,y e S with f{x) / f{y): 

1. If A is a quantum algorithm then 

T> Cx 



l-2^e{l-e) 



2. If A is a randomized algorithm then 



T>c. 



E..,^,,miu(2-KW-.^),2-KW^,^))- 

We briefly describe the intuition behind the proof of Theorem ^ Consider an algorithm that 
purports to compute /, presented with two inputs x, y that lead to different outputs. The algorithm 
must query those positions where x and y differ with average probability of the order of or it 
will not successfully compute the function. On the other hand, the queries that are made with 
high average probability can be described succinctly given the input and the algorithm, using the 
Shannon-Fano code. If we exhibit a pair of strings x, y for which there is no succinct description of 
any of the positions where x and y differ, then the number of queries must be large. 

The same reasoning can be applied to classical and to quantum computing; the only difference 
is how fast two different input states cause the outputs to diverge to different outcomes. 

To conclude the introduction we give a very simple application, for Grover search. 

Example 1. Fix n and a quantum algorithm A for Grover search for instances of length n. Let z 
be a binary string of length logn, with K(z|A) > logn. Let j be the integer between and n — 1 
whose binary expansion is z. Consider x, the all O's string, and let y be everywhere except at 
position i = j + 1, where it is 1. Then K(i|x, A) > logn — 0(1) and K{i\y,A) = 0(1), therefore, 
QQC(Search) = 



2 Preliminaries 

2.1 Kolmogorov complexity 

We use a few standard results in Kolmogorov complexity and information theory in this paper. We 
briefly review these here. The reader is invited to consult standard textbooks such as |LV97j for more 
background on Kolmogorov complexity, and |CT91j for more on information theory. We denote the 
length of a flnite string x by We assume that the Turing machine's alphabet is the same flnite 
alphabet as the alphabet used to encode instances of the function under consideration. Letters 
X, y typically represent instances; i is an index into the representation of the instance; and p, q 
are probability distributions. Programs are denoted P, and the output of a Turing machine M on 
input X is written M(x). When there are multiple inputs, we assume that a standard encoding of 
tuples is used. 
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Definition 1. Let M be a Turing machine. Let x and y be finite strings. 

1. The Kolmogorov complexity of x given y with respect to M is denoted CM{x\y), and defined 
as follows: 

CM{x\y) = min(|P| such that M{P,y) = x). 

2. A set of strings is prefix-free if no string is a prefix of another in the set. 

3. The prefix-free Kolmogorov complexity of x given y with respect to M is denoted KMix\y), 
and defined as follows: 

^M{x\y) = min(|P| such that M{P,y) = x), 
where P is taken in some fixed prefix-free set. 

In the rest of the paper M is some fixed universal Turing machine, and we will write C and K 
instead of Cm and Km- When y is the empty string, we write K(x) instead of K{x\y). 

Proposition 1. There exists a constant c > such that for every finite string a, 

K(x|c7) < K{x) + c, and 

K{x) < K{a)+K{x\a)+c. 

Proposition 2 (Kraft's inequality). Let S be any prefix-free set of finite strings. Then 

Proposition 3 (Shannon's coding theorem). Consider a source S of finite strings where x 

occurs with probability p{x). Then for any code for S, the average code length is bounded below by 
the entropy of the source, that is, if x is encoded by the code word c{x) of length \c{x)\, H{S) = 

Lemma 1. Let S be a source as above. Then for any fixed finite string a, there exists a string x 
such that p{x) ^ and K(x|(t) > log(^^). 

Proof. By Shannon's coding theorem, 

H{S)= J2 f(^)log(^)< E M^)K(^k), 

x:p{x)^0 x:p{x)^0 

because K(x|(7) is the length of an encoding of x. Therefore there exists x such that p{x) ^ and 
K(x) > log(^). □ 

The Shannon-Fano code is a prefix-free code that encodes each word x with p{x) ^ 0, using 
[log(^^)] bits. We will write log(^^) to simplify notation. The code can easily be computed 
given a description of the probability distribution. This allows us to write the following proposition, 
where K(x\S) means the prefix-free Kohiiogorov complexity of x given a finite description of S. 

Proposition 4 (Shannon-Fano code). There exists a constant c> 0, such that for every source S 
as above, for all x such that p{x) / 0, K(a;|5) < log{-7^) + c. 
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We shall also use the following bound on conditional Kolmogorov complexity. 
Proposition 5. There is a constant c > such that for any three strings x, y, z, 

K{z\x) > K(x, y) — K(x) — K(y|z, x) + K(z|x, y, K(x, y)) — c. 
Proof. Using |LV971 Theorem 3.9.1, page 232], there is a constant ci > such that 

|K(a, b) - K(a) - K{b\a, K(a))| < a. 
Substituting x, y for a and z for b: 

K(x, y) + K{z\x, y, K{x, y)) - ci < K(x, y, z) < K{x) + K{z\x) + K{y\z, x) + C2, 
which gives the result. □ 

2.2 Randomized and quantum query models 

The quantum query model was implicitly introduced by Deutsch, Jozsa, Simon and Grover |Deu85[ 
lDJ92i Sim97i l(;ro96j . and exphcitly by Beals, Buhrman, Cleve, Mosca and de Wolf |BBC+nij . In 
this model, as in its classical counterpart, we pay for accessing the oracle, but unlike the classical 
case, the machine can use the power of quantum parallelism to make queries in superposition. 
Access to the input x E S", where S is a finite set, is achieved by way of a query operator Ox- The 
query complexity of an algorithm is the number of calls to Ox- 

The state of a computation is represented by a register R composed of three subregisters: the 
query register i £ {0, . . . , n}, the answer register z € S and the work register w- We denote a register 
using the ket notation \R) = \i)\z)\w), or simply \i,z,w). In the quantum (resp. randomized) 
setting, the state of the computation is a complex (resp. non- negative real) combination of all 
possible values of the registers. Let TC denote the corresponding finite-dimensional vector space. We 
denote the state of the computation by a vector {ip) £ TL over the basis z, w))i^z,w- Furthermore, 
the state vectors are unit length for the £2 norm in the quantum setting, and for the ii norm in 
the randomized setting. 

A T -query algorithm A is specified by a (T-l-l)-uple (f/o, C/i, . . . , Ut) of matrices. When A is 
quantum (resp., randomized), the matrices Ui are unitary (resp., stochastic). The computation 
takes place as follows. The query operator is the unitary (resp. stochastic) matrix Ox that satisfies 
Ox\i-,z,w) = \i, z ® Xi,w) , for every i, z,w, where by convention xq = 0. Initially the state is set to 
some fixed value |0, 0, 0). Then the sequence of transformations Uq, Ox, Ui,Ox, - - - , Ut-i, Ox, Ut is 
applied. 

We say that the algorithm A e-computes a function f : S ^ S' , for some sets C and S' , if 
the observation of the last bits of the work register equals f{x) with probability at least 1 — e, for 
every x G S- Then QQC(/) (resp. RQC(/)) is the minimum query complexity of quantum (resp. 
randomized) query algorithms that eo-compute /, where eo is a fixed positive constant no greater 
than ^. 

3 Proof of the main theorem 

This section is devoted to the proof of the main theorem. We prove Theorem ^ in two main 
steps. Lemma 121 shows how fast the computations diverge when they start on different individual 
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inputs, in terms of the query probabilities. This lemma depends on the model of computation. 
Lemma |31 establishes the relationship between the Kolmogorov complexity of individual positions 
of the input, and the probability that a given algorithm makes a query to this position. This lemma 
is independent of the model of computation. Theorem ^ follows immediately by combining these 
two lemmas. 

In the following two lemmas, let A be an e-bounded error algorithm for / that makes at most T 
queries to the input. Let pf{i) be the probability that A queries Xi at query t on input x, and let 
p^{i) = ^ Ylt=i Pt i."^) be the average query probability over all the time steps up to time T. We 
assume henceforth without loss of generality that p^(i) > 0. (For example, we start by uniformly 
querying all positions and reverse the process.) 

Lemma 2 (Divergence Lemma). For every input x,y £ S such that f{x) ^ f{y) the following 
holds. 

1. For quantum algorithms: 

2T VP^{i)pHi) > l-2Ve(l-e). 

2. For randomized algorithms: 

2T mm{p''{i},py{i)) > 1 - 2e. 
We defer the proof of Lemma [21 to the end of this section. 

The next lemma relates the query probabilities to the Kolmogorov complexity of the strings. 
In this lemma and the results that follow, we assume that a finite description of the algorithm is 
given. Using the knowledge of A, we may assume without loss of generality that the function / 
that it computes is also given, as is the length n of the inputs. With additional care, the additive 
constants in all of the proofs can be made very small by adding to the auxiliary information made 
available to the description algorithms, those constant-size programs that are described within the 
proofs. 

Lemma 3 (Query Information Lemma). There exists an absolute constant c > such that for 
every input x £ S and position i G {1, . . . n}, 

\i{i\x,A) <log(=^) + c. 

Proof. We describe the program that prints i given x and A. Given x^ use A and x to compute the 
probabilities p^{i). This can be done in a finite number of steps because the number of queries is 
bounded by T. The program includes a hard coded copy of the encoding of i under the Shannon- 
Fano code for this probability distribution. Decode this and print i. □ 

From these two lemmas we derive the main theorem. 

Proof of Theorem^ By Lemma|31 there is a constant c > such that for any algorithm that makes 
at most T queries, and any x,y,i, 

p'^ii) < 2-'<(i|^.^)+': and py{i) < 2-K(i|2/-^)+^ 

This is true in particular for all those i where Xi ^ yi. Combining this with Lemma [21 concludes 
the proof of the main theorem with C = 2~'^~^. □ 
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We now give the proof of Lemma |21 The proof of the quantum case is very similar to the proofs 
found in many papers which give quantum lower bounds on query complexity. To our knowledge, 
the randomized case is new despite the simplicity of its proof. Whereas Aaronson |Aar03j used a 
different approach to prove a version of Ambainis' method for randomized algorithms, our lemma 
allows us to use the same framework to establish lower bounds for both quantum and randomized 
query complexities. 

Proof of Lemma\^ Let \^l^f) be the state of the e-bounded error algorithm A just before the tth. 
oracle query, on input x. By convention, IV'f'+i) is the final state. When yl is a quantum algorithm 
{ipf) is a unit vector for the ^2-iiorm; otherwise it is a probabilistic distribution, that is, a non- 
negative and unit vector for the £i-norm. Observe that the £i-distance is the total variation distance. 

First we prove the quantum case. Initially, the starting state of A does not depend on the input, 
thus before the first question we have {ipf) = so (V'l IV'i) = 1- At the end of the computation, 
if the algorithm is correct with probability e, then \ {tpx+i\'^T+i)\ — 2-\/ e(l — e). At each time step, 
we consider how much the two states can diverge. 

Claim 1. im^t) - (V'f+ilV^r+i)! < 2E.:.,^,, VWWpM- 
The proof of Claim ^ can be found in Appendix 1X1 

Over T time steps, the two states diverge as follows. The proof uses only Claim ^ and the 
Cauchy- Schwartz inequality. 

1 - 2y/e{l - e) < 

T 

t=l 

Now we prove the randomized case. Again, initially = At the end of the computation, 
if the algorithm is correct with probability e, then || |V'f'+i) — |V't+i) I|i^ 1 ~ 2e. At each time step, 
the distribution states now diverge according the following claim. 

Claim 2. II l^f+i) - IV^^V) ||i<|| \rt) - m 111 +2Ei:.,^,,min(pf(i),prW) • 

The proof of Claim [21 can be found in Appendix^ We now conclude the proof. 

l-2e < Y.\\\r,^^)-\^y^^)\\,-\\\r,)-\i^l)h 
t=i 

T 

< ^2 min{pni),p!{i))<2T min(r«,r«). 

t=l i:Xiftyi i-Xi^yi 

□ 



l(^fl^?)-(#+ilV'f^+i>l 

^ I 

t=l r.Xif^Vi 



s2 E \ 

i:Xi^yi \ 



7 



4 Comparison with previous adversary methods 



In this section, we reprove, as a corollary of Theorem ^ the previously known adversary lower 
bounds. Our framework also allows us to obtain somewhat stronger statements for free. 

To obtain the previously known adversary methods as a corollary of Theorem we must give 
a lower bound on terms K(i|j;, A) and K{i\y,A). To this end, we apply Proposition [3 and give a 
lower bound on K(x,y), and upper bounds on K{x\i,y) and K{y\i,x). The lower bound is obtained 
by applying LemmaQ a consequence of Shannon's coding theorem, for an appropriate distribution. 
The upper bounds are obtained using the Shannon-Fano code, for appropriate distributions. 

The following lemma is the general formulation of the sketch above. 

Lemma 4. There exists a constant C > such that the following holds. Let Ti he a finite set, let 
n > 1 be an integer, and let S C S". Let q be a probability distribution on 5^, let p be a probability 
distribution on S and let {p'^^ : x £ S,l < i < n} be a set of probability distributions on S. Then 
for every finite string a, there exist x,y £ S with q{x, y) ^ 0, such that 



1 



\l p{x)p'^^i{y) p{y)Py/x) 



> C X min : , and 



v.. , a/2"'^(*I^'''^)"'^(*I2^'°") i-xiT^vi \ q{x,y) 



> C X min ( 



max 



p{x)p'xAv) p{y)p'uAx) 



E»::,,^y,min(2-K(i|^-'^),2-'<(^IJ/''^)) i:x,H^\ V <l{x,y) ' <l{x,y) 

provided that q{x,y) = whenever p{x) = or p{y) = 0, orp'y-{x) = or p'^-{y) = for some i 
such that Xi ^ yi- 

Proof. In this proof, ci,... ,C5 are some appropriate nonnegative constants. By Lemma ^ there 
exists a pair (x, y) such that q{x,y) / and 

K{x,y\a,p,p) > log{-^^), 

where p' stands for a complete description of all the p'^ j. 

Fix X and y so that this holds. By using the Shannon-Fano code (Proposition ISJ, 

K{x\p) < log{^) + ci and K(y|x, < log(^7-^) + ci, 

for any i such that Xi ^ yi. By Proposition |S1 

K(i|a;, cr) > K(i|x, cj,p,p') — C3 

> K{x,y\a,p,p') - K{x\p) - K(y|«,x,p'^ J + K{i\x,y, K{x,y),a,p,p') - C4 
^ log(^(i;^) -log(^) -log(^r^) + K(i|x,y,K(x,y),(j,p,p') -C5 

= log(^^^##^) + m^,y, Kix,y),a,p,p') - C5. 



Similarly, 



K{i\y,a) > log(^^^^) + K{i\x,y,K{x,y),a,p,p') 



q[x,y) ^ yi "^\-^^ y It'^ T F I ^ C5 

This concludes the proof of the lemma using Kraft's inequality (Proposition|2)) and letting C = . 

□ 
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4.1 Ambainis' weighted scheme 

Theorem 2 (Ambainis' weighted method). Let S be a finite set, let n > 1 be an integer, and 
let S C and S' be sets. Let f : S ^ S' . Consider a weight scheme as follows: 

• Every pair {x,y) G S'^ is assigned a non-negative weight w{x,y) such that w{x,y) = when- 
ever f{x) = f{y). 

• Every triple {x,y,i) is assigned a non-negative weight w'{x,y,i) such that w'{x,y,i) = 
whenever Xi = y-i or f{x) = f{y). 

For all x^i, let wt{x)=Yl,yW{x^y) and v{x,i)=^yW{x,y,i). If w'{x,y,i)w'{y,x,i) > w'^{x,y) for 
all x,y,i such that Xi ^ yi, then 



QQC(/) = n{ min 



' wt{x)wt{y) 
v{x,i)v{y,i) 



Furthermore, if w'{x,y,i),w' {y,x,i) > w{x,y) for all x,y,i such that Xi ^ yi, then 



RQC(/) = n\ min 

x,y,i 



wt{x) wt{y) 
v{x,i)' v{y,i)^ 



The relation in Ambainis' original statement is implicit in this formulation, since it corresponds 
to the non-zero-weight pairs. A weaker version of the randomized case was proven independently 
by Aaronson |Aar03j using a completely different approach. We show that Theorem |21 follows from 
Theorem ^ 

Proof. We derive probability distributions q,p,p' from the weight schemes as follows. Let W = 
T.x,yW{x,y) in 

w{x,y) wt{x) I w'{y,x,i) 

q{x,y) = ^ , p{x) = —^, and p^^i{y) = , foranyx,y,i. 

It is easy to check that by construction and hypothesis, these distributions satisfy the conditions 
of Lemma 01 Rearranging and simplifying the terms allows us to conclude. □ 

We conclude this section by sketching the proof of the unweighted version of Ambainis' adversary 
method, as it affords a simpler combinatorial proof, that does not require Lemma 01 To simplify 
notation we omit additive constants and the usual auxiliary strings including A. 

Let i? C S" X 5, be a relation on pairs of instances, where {x,y) £ R =^ f{x)i^f{y), and let Ri 
be the restriction of R to pairs x, y for which Xi ^ y^. Viewing the relation i? as a bipartite graph, 
let 1,1' ,m,m' be as follows. 

• m is a lower bound on the degree of all x G X, 

• m' is a lower bound on the degree of all y £Y, 

• for any fixed x and i,l < i < n, the number of y adjacent to x for which Xi ^ yi is at most I, 

• for any fixed y and i,l < j < n, the number of x adjacent to y for which Xi ^ yi is at most 
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We make the following observations. 

1. \R\ > max{m|X|, m'|y|}, so 3x,y K{x,y) > max (log(m|X|), log(m'|y|)) . 

2. Vx e X, K{x) < log{\X\) and K{y) < log(|y|), for all yeY. 

3. yx,y,i with {x,y) £ Ri,K{y\i, x) < log(/) and similarly, K{x\i,y) < log(/'). 
For any i with Xj ^ yi, by Proposition |SJ 

K(i|x) > K{x,y) — K{x) — K{y\i,x) + K{i\x,y,K{x,y)) 

> log(m|X|) - log(|X|) - log(0 + K(i|x, y, K(x, y)) 
= log(f) + K(i|x,y,K(x,y)) 

The same proof works to show that K(i|y) > log(^) + K(i|x, y, K(x, y)). By Theorem^and Kraft's 
inequality, 

QQC(/) = n 



4.2 Spectral lower bound 

We now show how to prove the spectral lower bound of Barnum, Saks ans Szegedy |BSS03j as a 
corollary of Theorem Q Recall that for any matrix F, A(F) is the largest eigenvalue of F. 

Theorem 3 (Barnum-Saks-Szegedy spectral method). Let T, be a finite set, let n > 1 be an 
integer, and let S C S" and S' be sets. Let f : S ^ S' . Let F be an arbitrary S x S nonnegative 
real symmetric matrix that satisfies T{x,y) = whenever f{x) = f{y)- For i = 1, . . . ,n letTi be 
the matrix: 

0, ifxi=yi; 
r{x,y), otherwise. 



'^i{x,y) 
Then 



QQC(/) = n < ^^^^ 



maxj A(Fj 



Proof. Let \a) (resp. \ai)) be the unit eigenvector of F (resp. Fj) with nonnegative entries and 
whose eigenvalue is A(F) (resp. A(Fj)). We define the probability distributions q,p,p' as follows. 
Let W = Y.x,yW{x,y) in 

q{x, y) = ^^""'^Ifi^l^y^'"^ , p{x) = {x\af, Pi,xiy) = ^'{x\r]\i"'^ ' foranyx,y,i 

By construction these distributions satisfy the conditions of LemmaHJ which suffices to conclude. 

□ 
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5 Certificate complexity and adversary techniques 



Let / be a boolean function. For any positive instance x E of / {f{x)=l), a positive certificate 
for f{x) is the smallest subset of indices / C [n] of x, such that for any y with Xi = yi for all i £ I, 

f{y)=i- 

The 1-certificate complexity of /, denoted Ci(/), is the size of the largest positive certificate 
for f{x), over all positive instances x. The 0-certificate complexity is defined similarly for negative 
instances x oi f (/(x) = 0). 

Prior to our work, it was known that the best possible bound that could be proven us- 
ing the unweighted adversary technique |Amb021 Theorem 5.1] is 0(y^Co(/)Ci(/)). Indepen- 
dently, Szegedy jSzeO.Sj showed that the best possible lower bound using the spectral method is 
0(min( nCo{f), ■\/nCi(/))), and Zhang |Zhan3j proved the same for Ambainis' weighted method. 

The following lemma, due to Troy Lee, results in a very simple proof of the fact that our method, 
and hence, all the known variants of the adversary method, cannot prove lower bounds larger than 
min(7^IC^, ^/^^C^U)). 

Lemma 5. There exists a constant c > such that the following holds. Let T, be a finite set, let 
n > 1 be an integer, and let S CT,"^ be a set. Let / : S ^ {0, 1}. For every x,y £ S with f{x) = 
and f{y) = 1, there is an i with Xi ^ yi for which K{i\x,f) < log(Co(/)) + c, and similarly, there 
is a j with xj ^ yj such that K(j|y, /) < log(Ci(/)) -|- c. 

Proof. Let / be the lexicographically smallest certificate for f{x). Since f{x) ^ f{y), x and y 
must differ on some i G I. To describe i given x, it suffices to give an index into /, which requires 
log(Co(/)) -|- c bits. The same can also be done with x and y reversed. □ 

Theorem 4. Let T, be a finite set, let n > 1 be an integer, and let S C be a set. Let 
f : S {0,1}. Then any quantum query lower bound for f given by Theorem 01 is in 

Proof. Let ^ be a quantum algorithm that computes / with bounded error by making at most T 
queries to the input. Since a description of / can be obtained from a description of A, K{i\x,A) < 

K(i|x, /) + 0(1). Therefore, the lower bound given by Theorem^is O I J2-^(^\-,f)-H^\y,f) 



where f{x) / /(y)- This is 0(min(y^nCo(/), y^nCi(/))) by Lemma|21 □ 



6 Applications 

6.1 A general method for distance schemes 

We generalize the technique of H0yer, Neerbek and Shi |HJNS02j . which they used to prove lower 
bounds on ordered search and sorting. Though their technique is similar, it does not appear to be 
a special case of the weighted adversary method. 

Here, we restrict ourselves to those weight functions that take values of the form ^, for integer 
values d. Therefore, instead of a weight function, we consider an integer function D, which may be 
thought of as a distance function on pairs of instances (even though it is not the case in general). 
We will define the load of an instance x, to be the maximum number of instances y at distance d 
from X, for any d. This will allow us to bound the complexity of printing y, given x and d. (In the 
case of ordered search, the load will be 1 for all instances.) 
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More formally, for any non-negative integer function D on pairs {x,y), we define the right load 
RL(a;, i) to be the maximum over all values d, of the number of y such that D{x, y) = d and Xi ^ yi- 
The left load LL(y,z) is defined similarly, inverting x and y. 

Theorem 5. Let Ti be a finite set, let n > 1 be an integer, and let S C S" and S' be sets. Let 
/ : 5 — > S". Let D be a non-negative integer function on 5^ such that D{x,y) = whenever 
fix) = f{y)- Let W = 'Zx,y:D{x,y)^OD^- ^^en 

QQC(/) = ^\ %: min 



RQC(/) = ^[^, min ( 




W //II 

; — - mm max , ; 

1^1 W/o,.^.A VrL(x,.)'LL(,,z 

Proof. We use a variation on Lemma 01 We define probability distributions q{x, y) = y)xw 
whenever D{x,y) and q{x,y) = otherwise; p{x) = j^. Fix a to be the string containing a 
description of A and D, where D is a complete description of the distance function, and where we 
assume that A includes a description of /, hence RL(x, i), LL(y, z) and are also given. 

We give an upper bound on the terms K{y\x, i) and \<-{x\y, i) directly, using left and right loads. 
Given and some integer d > 0, there are at most RL(x,i) instances y such that D{x,y) = d 
and Xi 7^ y^. Therefore 

K{y\x, i, a) < log{D{x, y)) + log(RL(a;, i)) + c, 
where c > is some constant. The same is true for K(x|y, i): 

K(y|x, i, a) < log{D{x, y)) + log(LL(y, i)) + c. 
Now, we conclude following the same sketch as the proof of Lemma ^ □ 

We reprove some of the lower bounds of H0yer, Neerbek and Shi. The distance schemes we 
use are exactly the ones of IHN Sn2j . Whereas they did not separate the quantum part from the 
combinatorial part in their proofs, here we only need to evaluate the combinatorial objects RL and 
LL to get the results. 

Corollary 1. QQC(Ordered search), RQC(Ordered search) =0(logn). 

Proof. Fix S = {0, 1}. We only consider the set of instances S of length n of the form o^^^f^"". 
Note that |5| = n. Define distance for pairs {x,y) G S"^ as D{x,y) = b — a, and D{x,y) = for all 
other instances, where x = 0'^~il"~'^ and y = o^"^l"~^ with 1 < a < 6 < n. The inverse distance 
has total weight W = 0(nlogn). Furthermore, for every x,y,i such that D{x,y) / and Xi ^ yi, 
'RJj{x,i) = LL(y,i) = 1. The result follows by Theorem|Sl □ 

A lower bound for sorting |HNSn2j in the comparison model can also be obtained by applying 
Theorem |SJ 

Corollary 2. QQC(Sorting), RQC(Sorting) = Q{nlogn). 
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Proof. Fix T, = {0, 1}. An input is an n x n comparison matrix Mu defined by {Mu)ij = 1 if 
a{i) < a{j), and {Mu)ij = otherwise, wliere a is some permutation of {1, . . . ,n}. (In the usual 
array representation, the element of rank r in the array would be stored at position a~^{r).) The 
set S of inputs is {Mo- : a G Sn}- 

We consider pairs of instances Mcr, M^(k,d) , where obtained from a by changing the 

value of the element of rank k + d to a value that immediately precedes the element of rank A; in o". 
This changes the rank of the d elements of intermediate rank, incrementing their rank by one. 

More formally, define a^^'^^ = (k, k + 1, . . . , k + d) o a , for d ^ 0. For every permutations a, r 
we let D{M„,Mr) = d if there exists k,d such that r = a'^''''^\ and D{M„,Mr) = otherwise. 
Observe that whenever r = a^^''^\ the comparison matrices Mq- and M^- differ only in entries 
{a~^k + d),a-^{i)) = (r-i(A;),r"i(i + 1)) and {a-\i),a-^k + d)) = {T-^{i + l),T-\k)), for 
k<i<k + d-l. 

Then for every a,T,{i,j) such that D{M^,Mr) / and {M^)ij / {Mr)ij, RL(cr, = 
LL((T, (i, j)) = 2. This is because given a, d, either i = a^^{k + d) or j = a~^{k + d), so there 
are two possible values for {k,d). Similarly, RL(r, = LL(r, = 2. The inverse distance 

has total weight W = 0((n!)nlogn) and the size of S is \S\ = (n!). Applying Theorem |SJ we 
conclude the proof. □ 

6.2 Graph properties 

Theorem ^ provides a simple and intuitive method to prove lower bounds for specific problems. 
We illustrate this by giving lower bounds for two graph properties: connectivity, and bipartiteness. 
These are direct applications of Theorem ^ in that we analyze directly the complexity K(i|x,yl) 
without defining relations or weights or distributions: we only need to consider a "typical" hard 
pair of instances. In this section, we omit additive and multiplicative constants that result from 
using small, constant-size programs, as well as the constant length auxiliary string A to simplify 
the proofs. 

6.2.1 Bipartiteness 

Theorem 6 ([DHH+03J). In the adjacency matrix model, 

QQC(BlPARTITENESS) = Q{n), 
where n is the number of vertices in the graph. 

Proof. Let G be the star on n vertices. Let z,j be two leaves of G chosen such that K(i, > 
log (2). Define -ff to be G to which the single edge is added. 

By hypothesis, K{i,j\G) > log (2)- By TheoremlU QQC(Bipartiteness) = i7(n), as claimed. 

□ 

6.2.2 Graph connectivity 

Theorem 7 ([DH H^03j ). In the adjacency matrix model, 

QQC(GraphConnectivity) = r2(n^/^), 
where n is the number of vertices in the graph. 
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Figure 1: Graphs G, H for the bipartiteness lower bound 



Proof. It suffices to consider one negative and one positive instance of graph connectivity, which 
we construct using the incompressibihty method, using the ideas of pHH+n3| . Let S be an incom- 
pressible string of length log(n — l)!+log (2), chopped into two pieces 5i and ^2 of length log(n — 1)! 
and log (2) , respectively. We think of Si as representing a hamilton cycle C = (0, 7r(0) • • • 7r(n— 1), 0) 
through the n vertices, and S2 as representing a pair of distinct vertices s, t. Let G contain the 
cycle C and let H be obtained from G by breaking the cycle into two cycles at s and t, that is, 
H = G\ {{7r{s),7ris + 1)), (7r(i), 7r(t + 1))} U {(^(s), 7r(t + 1)), (^(s + 1), 7r(t))}. 

Jr(2) 7r(3) 7r(2) 7r(3) 

,r(l) ,r(l) 




Figure 2: Graphs G, H for the connectivity lower bound 



We show that for the four edges e where G and H differ, K(e|G) + K{e\H) > 31ogn — 4. Let 
e_,e'_ be the edges removed from G, and e+,e'_,_ be the edges added to G. Observe that up to 
an additive constant, K(e+|G) = K{e'^\G) and K{e-\H) = K{e'_\H). Let e_ be one of the edges 
removed from G, w.l.o.g., e_ = (7r(s),7r(s + 1)). 

log(n - 1)! + log Q < K(5) < K(G) + K{s\G) + K(t|G) 

< K(G) + K(e_|G) +logn 
K(e_|G) > logT^) -logn = log^ 
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Assume w.l.o.g. that the smallest cycle of H contains 7r(s), and let I be its length. 
log(n-l)! + logQ < K(5) < K{H) + K{e-\H) + K{Tr{t),n{t + l)\H) 

< log j^^, + log(n-Z-l)! + K(e_|i?) + logZ + log(n-0 
K(e_ \H) > 2 log n + log(n-Z) - log(Z) > 2 log n. 



For the added edges, e^,e'_^_, consider w.l.o.g. e+ = (7r(s),7r(t + 1)). Since S is incompressible, 
K(e+|G) > K{s,t\G) > log Q). Furthermore, K(5) < K{H) + K{e+\H) + K{e'+\H), and K{e'+\H) < 
logn, so K{e+\H) > log (^) - logn = log The same proof shows that K(e'+|i?) > log 

□ 
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A Proofs of claims 

Proof of Claim^\ Let 

n't) = '^Oii,z,w\i,z,w), and \tl;f) = ^Pi^z,w\i,z,w). 

i,z,w i,z,w 

After the tth. query is made, the states = O^IV'f) ^^'^ li^'t^) = Oylil^f) are 

I'^T) = Oii,z,w\i,z ® Xi,w), and iV'f^) = I3i,z,w\i, z ® yi,w). 

i,z,w i,z,w 

Now, since the inner product is invariant under unitary transformations, we get 
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and therefore, 



i,z,w i,z,w 
— I ^ ^ ^i,z,wPi,z,w C^i,z(Bxi,wPi,z(Byi,w\ 



i-.Xif^y, \ z,w z,w 



i,zwyi,ui\ 



\Z,W / \2,UI 



< 2 Y ypni)p't{i) 

i-Xi^yi 



□ 



Proof of Claim\^ Let us write the distributions using the above formaUsm, that is, 

IV'f) = X] ai,2,-(«l^,2,w), and \ip^) = ^ I3i^z,w\i, z,w). 

i,z,w i,z,w 

Note that now, the vectors are unit for the ii norm. After the tth query is made, the states 
m = O.IVf ) and iV^f ) = O.lV^f) are 



J.z.ui 1^) Z W Xi, W 



and 1-04^) = E ^> 



'i,z,w\i,z (Dyi,w) 



Now, since the ii distance does not increase under stochastic matrices, we get 



II IV'f+i) - IV'r+i) lli<ll \4l-\4') 



and therefore. 



iV'f+i) - iV'r+i) 



- Pi,z,w\i, z ® yi,w)) 111 

i,z,w 

E II ^("^'•"''"l^'^® - Pi,z,w\i,z ® yi,w)) 111 . 



t z,w 



We now bound each term of the last sum separately. Fix any i. If Xi = yi then 

II E("*.2-"'l^'^®^»''^) - l^i,z,w\i,z®yi,w)) ||i = || E("*,^,«'N'^''^) - Pi,z,w\i-,z,w)) 111 . 
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If Xi 7^ yi then, 

II '}2{ai,z,w\i:Z®Xi,w) - Pi,z,w\i:Z®yi,w)) 111 
z,w 

^ \\^{'^i,z,w\i,z®yi,w) - Pi^z,w\i,z®yi,w)) ||i 

z,w 

+ II ^{ai,z,w\hz®Xi,w) -ai^z,w\hz®yi,w)) ||i 
^ II Xl*^"»>^'"'l^'^'"^) ~ ^^'^'"'l^'^'^)) 111 +2 II Xl'^M.wK'^'^) 111 

Z,W 

= II - 111 +2p^{i). 

z,w 

In the same way we can prove that 

II '^{ai,z,w\i, z © Xi, w) - fdi^z ,w\'i-> z ® yi-, w)) 111 

z,w 

^ II ^io:i,z,w\i,z,w) - Pi^z,w\hz,w)) 111 +2pl{i). 
z,w 

We regroup these majorations and conclude 

iii^r+i) - iv^r+i) 111 < EiiE( 

(^i,z,w\^ Z, W ) - Pi,z,w\'>;Z,w)) \\i +2 ^ m.in{p^{i),pf{i)) 
i z,w i:xij^yi 

= II m-m 111+2 E ^^{pti^),p'tii))- 



□ 
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